Hi,
I would like my SSL VPN users to have two factor authentication when connecting.
I have the VPN working fine with regular LDAP authenticatoin, but when I know want to add the "other factor" ..Im a bit lost.
Do I understand it correctly that within my Fortigate SSL VPN configuration, I am not able to add both my LDAP auth and my RADIUS auth (the radius is my sms thingy..Mideye).
I might need to run everything trough a Radius server ( I have a NPS running ) and have the 2factor happen there ?
Its not possible to add both LDAP and RADIUS auth to my SSL config on the fortigate ? or ?
Hi,
no, you can't do both RADIUS and LDAP, Fortigate doesn't have any chained-like authentication.
I guess Mideye has its own RADIUS server which integrates into your LDAP. This RADIUS server should be then used in Fortigate configuration.
This is the way I would investigate.
Regards,
Fishbone)(
smithproxy hacker - www.smithproxy.org
If I remember correctly the supported second factor for SSL VPN is certificate based only. So trust your personal CA and deliver certificates to the users.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1740 | |
1109 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.